These forums are now Read Only. If you have an Acrobat question, ask questions and get help from one of our experts.

Security and Confidentiality With SendNow

wsbarna
Registered: Nov 3 2010
Posts: 1

I am hoping someone can assist with this request. I need to know how Adobe is handling the confidentiality of information that is upload using SendNow. I called customer service and was told that confidentiality was part of the Privacy agreement (that is available online) that there was not a separate policy. However, reading through the agreement, I'm not sure if this is quite what I was looking for.
 
I work in IT for a law firm, and we are looking to use Sendnow to replace the FTP server that we currently have in place to FTP large PDFs to clients.

My Product Information:
Acrobat Standard 10.0, Windows
UVSAR
Expert
Registered: Oct 29 2008
Posts: 1357
SendNow Online, as with all the Acrobat.com Online Services offerings, uses servers physically based in the USA. As such they are subject to both the Adobe general privacy policies at this link, and the Acrobat.com additional Terms of Use at this link.Note in particular clause 3.5 in the extended TOU, requiring any user to take sole responsibility for the protection of confidential content uploaded to the services. This for example would mean encrypting PDFs before upload, restricting access to the shared URL for download, etc. and complying with export restrictions for PII.

One particular problem which is often encountered is if documents originating in the EU are uploaded - although Adobe Systems is a signatory to the EU Safe Harbor Agreement, there are caveats to their registration and some EU member states have made the distribution of certain classes of documents containing personally-identifiable information (PII) to any servers in the USA a criminal offense.


Acrobat.com is automated, so there is no routine access to content by Adobe employees - however Adobe do reserve the right to access user content for specific purposes as per clause 6 of the extended TOU. While such access is rare, it may not be compatible with a privileged workflow as the user will not always be aware of the access taking place.


There is a basic summary of the physical security arrangements for the Acrobat.com hosting platform here.Technologically, it is worth noting that without protection through a VPN or SFTP client etc., FTP is less secure than browser-based cloud storage, as the username and password are sent in plaintext packets which can be sniffed. All traffic to Acrobat.com is via SSL, however it is of course only as secure as the users with access are trustworthy.